Choosing a TSCM Provider

TSCM is an unregulated market where anyone with a handheld detector can trade. The gap between providers is the gap between assurance and theatre. Here is how to vet capability, method and discretion before you hand over your most sensitive rooms.

Last reviewed: 2026-09-03

Capability: method and equipment, not war stories

A professional provider can explain their methodology in plain language before you sign: how they assess threat, what the physical search covers, what the electronic inspection covers, and what the report will let you decide. Vague invocations of classified techniques are a red flag; a described, staged method is the mark of a practice rather than a performance.

Ask specifically what equipment classes deploy on your job. Professional work combines RF spectrum analysis across a wide frequency range, non-linear junction detection to find dormant and switched-off devices, thermal and optical inspection, and — decisively — systematic physical search by trained hands. Any provider whose answer is a single handheld detector is selling reassurance, not detection.

Discretion, independence and the awkward questions

Confidentiality is a capability, not a promise. Ask how scheduling is disguised, whether operators arrive unbadged, how findings are communicated and to whom, and whether the provider will sign your NDA before scoping. Ask who actually turns up: subcontracting is common, and you are entitled to know whose background you are trusting.

Independence matters too. A provider that also sells surveillance services, or that monetises fear with per-device bounties and dramatic find rates, has incentives you do not want inside your boardroom. Straightforward per-engagement or programme pricing keeps the incentive aligned with thoroughness.

Finally, pressure-test the find protocol. What happens if a device is discovered — evidence handling, legal escalation, your notification duties, re-inspection? A provider without a rehearsed answer has never handled one, or has handled it badly.

Red flags that end the conversation

Guaranteed detection — no honest practitioner guarantees a negative. Prices too low to cover the equipment supposedly deployed. Refusal to describe methodology even under NDA. High-pressure fear marketing and inflated find statistics. No insurance, no verifiable trading history, no named individuals. And any suggestion of intercepting or monitoring on your behalf: a provider casual about the law on one side of the microphone will be casual on yours.

Sweep-specific buyer guidance

For sweep methodology, realistic limitations, and the questions to ask before attendance, see the TSCM Sweep provider guide.

The vetting checklist

  1. 01Described, staged methodology — threat assessment through report
  2. 02Equipment classes named: spectrum analysis, NLJD, thermal, physical search
  3. 03Named operators with verifiable backgrounds; subcontracting disclosed
  4. 04Mutual NDA signed before scoping detail is exchanged
  5. 05Professional indemnity and public liability insurance evidenced
  6. 06Sample report reviewed — findings, risk language, decisions enabled
  7. 07Find protocol rehearsed: evidence, escalation, notification, re-inspection
  8. 08Pricing model transparent; no per-device incentives
  9. 09References offered under NDA, in your sector where possible
  10. 10Registered legal entity with a traceable trading history

Common questions

What qualifications should a TSCM operator have?
There is no statutory licence for TSCM in the UK or US, which is exactly why vetting matters. Look for verifiable specialist training, a background that withstands checking (government technical security, military or law-enforcement technical roles are common), named operators rather than anonymous teams, professional insurance, and a registered legal entity with a traceable history.
Should the provider sign an NDA before we discuss anything?
Yes — a mutual NDA before scoping is standard professional practice, and a provider that resists one is disqualifying itself. You will need to share floor plans, threat concerns and meeting patterns; that information is itself sensitive.
Can we use our regular security company for sweeps?
Usually not well. General security firms rarely carry the specialist equipment or the current technical training the work requires, and a walk-through with a handheld detector creates false assurance — which is worse than no sweep, because it ends the conversation. Use specialists for the technical inspection and keep your incumbent for what they are good at.

Scope an assessment

A short conversation establishes scope and a fixed price. Assessments run across the US, UK and Europe.

Speak to a specialist